ZeroHour

CVE-2021-27935

CVSS 3.1
7.5 high
EPSS
5%p92
Published
()
Modified
Description

An issue was discovered in AdGuard before 0.105.2. An attacker able to get the user's cookie is able to bruteforce their password offline, because the hash of the password is stored in the cookie.

Vendors
adguard
Products
adguard home
Weakness
CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.